summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
Diffstat (limited to 'pkg/app/handler/cvetool/comments.go')
-rw-r--r--pkg/app/handler/cvetool/comments.go3
1 files changed, 2 insertions, 1 deletions
diff --git a/pkg/app/handler/cvetool/comments.go b/pkg/app/handler/cvetool/comments.go
index 3d76d75..1659ea7 100644
--- a/pkg/app/handler/cvetool/comments.go
+++ b/pkg/app/handler/cvetool/comments.go
@@ -8,6 +8,7 @@ import (
"glsamaker/pkg/models/cve"
"encoding/json"
"glsamaker/pkg/models/users"
+ "html"
"net/http"
"time"
)
@@ -52,7 +53,7 @@ func addNewCommment(id string, user *users.User, comment string) (cve.Comment, e
CVEId: id,
UserId: user.Id,
User: user,
- Message: comment,
+ Message: html.EscapeString(comment),
Date: time.Now(),
}